zpomalený PC
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Vážení uživaterlé!
Ve dnech 4. - 6-9.2026 budou někteříí naši členové na každoročním srazu fóra. Žádáme vás, abyste měli strpení, nemusí se na na řešení vašeho problému dostat hned. Děkujeme za pochopení.
zpomalený PC
Dobrý večer , prosím o kontrolu logu, zpomalil se mi počítač.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-12-2014 01
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 03-12-2014 20:02:16
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [1443072 2008-03-13] (ESET)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {56f20948-f138-11dc-8eb0-e1e817431fe5} - F:\setupSNK.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {ff269b44-1c1a-11e0-915e-001d9236f20e} - "G:\WD SmartWare.exe" autoplay=true
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... }&ch_id=sm
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-789336058-1417001333-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60515
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: ICQ Search
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q=
FF SelectedSearchEngine: ICQ Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
FF Extension: DAEMON Tools Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\DTToolbar@toolbarnet.com [2012-12-06]
FF Extension: ICQ Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2012-07-27]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (McAfee Security Scan+) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [19200 2008-03-13] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [472320 2008-03-13] (ESET)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 eamon; C:\WINDOWS\System32\DRIVERS\eamon.sys [40456 2008-03-13] (ESET)
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
R1 easdrv; C:\WINDOWS\System32\DRIVERS\easdrv.sys [29704 2008-03-13] (ESET)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R1 epfwtdir; C:\WINDOWS\System32\DRIVERS\epfwtdir.sys [33800 2008-03-13] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] ()
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 af83exb0; C:\WINDOWS\system32\Drivers\af83exb0.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2014-12-03 20:02 - 00026421 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:01 - 2014-12-03 20:02 - 00000000 ____D () C:\FRST
2014-12-03 19:55 - 2014-12-03 19:55 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
2014-12-03 19:54 - 2014-12-03 19:55 - 01108992 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-03 20:01 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 20:00 - 2014-01-21 20:22 - 00004706 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-03 19:57 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 19:08 - 2013-04-17 20:21 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-03 19:05 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-03 19:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-03 18:19 - 2008-03-12 23:59 - 02050358 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-03 18:18 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-03 18:18 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-03 18:18 - 2011-04-15 19:04 - 00014951 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-03 18:18 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-03 18:18 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-03 18:18 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-12-02 22:02 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-02 22:02 - 2008-03-13 00:02 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-02 21:22 - 2014-04-21 09:00 - 00083104 _____ () C:\WINDOWS\setupapi.log
2014-12-01 19:52 - 2011-05-10 18:30 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-25 20:08 - 2013-04-17 20:21 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-25 20:08 - 2013-04-17 20:21 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
Some content of TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC10B6.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1369.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1581.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC15F8.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC161F.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC171E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1738.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1A17.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1B9C.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC249E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2600.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2AFC.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2FF.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC300.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC341.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC544.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC5D0.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC73D.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC85A.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC89B.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPCD95.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:467.51 GB) (Free:243.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive f: (DATA) (Fixed) (Total:465.75 GB) (Free:21.63 GB) NTFS
Drive g: (WD SmartWare) (CDROM) (Total:0.43 GB) (Free:0 GB) UDF
Drive h: (My Book) (Fixed) (Total:930.86 GB) (Free:608.32 GB) NTFS
Available physical RAM: 2166.09 MB
Total physical RAM: 3071.08 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 2EF92EF8)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=OF Extended)
Disk: 1 (Size: 467.5 GB) (Disk ID: 326D326C)
Partition 1: (Active) - (Size=467.5 GB) - (Type=07 NTFS)
Disk: 2 (MBR Code: Windows XP) (Size: 930.9 GB) (Disk ID: 0002AE3F)
Partition 1: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:61435A52
==================== Security Center ==================
AV: ESET NOD32 Antivirus 3.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Uivatel\Plocha" je 7564 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Sierra\\FEAR\\FEAR.exe"="C:\\Program Files\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe:*:Enabled:Far Cry 2"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe:*:Enabled:Editor"
"C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"="C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe"="C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe:*:Enabled:BugReport"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"F:\\call\\Delta Force Extrema 2.exe"="F:\\call\\Delta Force Extrema 2.exe:*:Enabled:Delta Force Extrema 2"
"F:\\Valve\\hl.exe"="F:\\Valve\\hl.exe:*:Enabled:Half-Life Launcher"
"F:\\Valve\\hltv.exe"="F:\\Valve\\hltv.exe:*:Enabled:HLTV Launcher"
"F:\\Full Spectrum Warrior\\Launcher.locked"="F:\\Full Spectrum Warrior\\Launcher.locked:*:Enabled:Launcher"
"F:\\BitComet\\BitComet.exe"="F:\\BitComet\\BitComet.exe:*:Enabled:BitComet.exe"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe:*:Enabled:Wolfenstein(TM)"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe:*:Enabled:Wolfenstein(TM)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe"="C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe:*:Enabled:NVIDIA Network Service TCP Exception (HTTPS)"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"
"22091:TCP"="22091:TCP:*:Enabled:BitComet 22091 TCP"
"22091:UDP"="22091:UDP:*:Enabled:BitComet 22091 UDP"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 02-12-2014 01
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 03-12-2014 20:02:16
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 6
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(ESET) C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
(forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET NOD32 Antivirus\egui.exe [1443072 2008-03-13] (ESET)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {56f20948-f138-11dc-8eb0-e1e817431fe5} - F:\setupSNK.exe
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {ff269b44-1c1a-11e0-915e-001d9236f20e} - "G:\WD SmartWare.exe" autoplay=true
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.daemon-search.com/startpage
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,ICQ Search = http://search.icq.com/search/results.ph ... }&ch_id=sm
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = %SystemRoot%\system32\blank.htm
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.microsoft.com/isapi/redir.dl ... ar=msnhome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dl ... r=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.microsoft.com/isapi/redir.dl ... R}&ar=home
HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.search.msn.com/{SUB_RFC1766}/ ... chasst.htm
URLSearchHook: HKU\S-1-5-21-789336058-1417001333-725345543-1004 - Modul přiřazení adres URL - {CFBFAE00-17A6-11D0-99CB-00C04FD64497} - C:\WINDOWS\system32\shdocvw.dll (Microsoft Corporation)
SearchScopes: HKLM -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {1CB20BF0-BBAE-40A7-93F4-6435FF3D0411} URL = http://www.crawler.com/search/dispatche ... tbid=60515
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8} URL = http://www.daemon-search.com/search?q={searchTerms}
BHO: AcroIEHlprObj Class -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Adobe\Acrobat 6.0 CE\Reader\ActiveX\AcroIEHelper.dll (Adobe Systems Incorporated)
Toolbar: HKLM - DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll ()
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> No Name - {4B3803EA-5230-4DC3-A7FC-33638F3D3542} - No File
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: ICQ Search
FF DefaultSearchUrl: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.2.9&q=
FF SelectedSearchEngine: ICQ Search
FF Homepage: hxxp://www.seznam.cz/
FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q=
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF user.js: detected! => C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\user.js
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
FF Extension: DAEMON Tools Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\DTToolbar@toolbarnet.com [2012-12-06]
FF Extension: ICQ Toolbar - C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2012-07-27]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (McAfee Security Scan+) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
S3 EhttpSrv; C:\Program Files\ESET\ESET NOD32 Antivirus\EHttpSrv.exe [19200 2008-03-13] (ESET)
R2 ekrn; C:\Program Files\ESET\ESET NOD32 Antivirus\ekrn.exe [472320 2008-03-13] (ESET)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 eamon; C:\WINDOWS\System32\DRIVERS\eamon.sys [40456 2008-03-13] (ESET)
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
R1 easdrv; C:\WINDOWS\System32\DRIVERS\easdrv.sys [29704 2008-03-13] (ESET)
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R1 epfwtdir; C:\WINDOWS\System32\DRIVERS\epfwtdir.sys [33800 2008-03-13] ()
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] ()
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 af83exb0; C:\WINDOWS\system32\Drivers\af83exb0.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2014-12-03 20:02 - 00026421 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:01 - 2014-12-03 20:02 - 00000000 ____D () C:\FRST
2014-12-03 19:55 - 2014-12-03 19:55 - 00112640 _____ (forum.viry.cz) C:\Documents and Settings\Uživatel\Plocha\FRSTLauncher.exe
2014-12-03 19:54 - 2014-12-03 19:55 - 01108992 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-03 20:02 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-03 20:01 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 20:00 - 2014-01-21 20:22 - 00004706 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-03 19:57 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 19:08 - 2013-04-17 20:21 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-03 19:05 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-03 19:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-03 18:19 - 2008-03-12 23:59 - 02050358 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-03 18:18 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-03 18:18 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-03 18:18 - 2011-04-15 19:04 - 00014951 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-03 18:18 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-03 18:18 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-03 18:18 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-12-02 22:02 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-02 22:02 - 2008-03-13 00:02 - 00032626 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-02 21:22 - 2014-04-21 09:00 - 00083104 _____ () C:\WINDOWS\setupapi.log
2014-12-01 19:52 - 2011-05-10 18:30 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\boost_interprocess
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-25 20:08 - 2013-04-17 20:21 - 00701104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-11-25 20:08 - 2013-04-17 20:21 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
Some content of TEMP:
====================
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC10B6.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1369.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1581.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC15F8.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC161F.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC171E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1738.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1A17.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC1B9C.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC249E.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2600.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2AFC.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC2FF.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC300.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC341.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC544.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC5D0.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC73D.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC85A.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPC89B.tmp.exe
C:\Documents and Settings\Uživatel\Local Settings\Temp\MPCD95.tmp.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: (WINDOWS) (Fixed) (Total:467.51 GB) (Free:243.95 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive f: (DATA) (Fixed) (Total:465.75 GB) (Free:21.63 GB) NTFS
Drive g: (WD SmartWare) (CDROM) (Total:0.43 GB) (Free:0 GB) UDF
Drive h: (My Book) (Fixed) (Total:930.86 GB) (Free:608.32 GB) NTFS
Available physical RAM: 2166.09 MB
Total physical RAM: 3071.08 MB
Percentage of memory in use: 29%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 465.8 GB) (Disk ID: 2EF92EF8)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=OF Extended)
Disk: 1 (Size: 467.5 GB) (Disk ID: 326D326C)
Partition 1: (Active) - (Size=467.5 GB) - (Type=07 NTFS)
Disk: 2 (MBR Code: Windows XP) (Size: 930.9 GB) (Disk ID: 0002AE3F)
Partition 1: (Not Active) - (Size=930.9 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
AlternateDataStreams: C:\Documents and Settings\All Users\Data aplikací\TEMP:61435A52
==================== Security Center ==================
AV: ESET NOD32 Antivirus 3.0 (Disabled - Up to date) {E5E70D32-0101-4F12-8FB0-D96ACA4F34C0}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Documents and Settings\Uivatel\Plocha" je 7564 MB.
***** Startup Programs *****
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DoNotAllowExceptions REG_DWORD 0x0
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"
"C:\\Program Files\\Sierra\\FEAR\\FEAR.exe"="C:\\Program Files\\Sierra\\FEAR\\FEAR.exe:*:Enabled:FEAR"
"C:\\Program Files\\GameSpy Arcade\\Aphex.exe"="C:\\Program Files\\GameSpy Arcade\\Aphex.exe:*:Enabled:GameSpy Arcade"
"C:\\WINDOWS\\system32\\PnkBstrA.exe"="C:\\WINDOWS\\system32\\PnkBstrA.exe:*:Enabled:PnkBstrA"
"C:\\WINDOWS\\system32\\PnkBstrB.exe"="C:\\WINDOWS\\system32\\PnkBstrB.exe:*:Enabled:PnkBstrB"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaWmp.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe"="C:\\Program Files\\Activision\\Call of Duty - World at War\\CoDWaW.exe:*:Enabled:Call of Duty(R) - World at War(TM)"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FarCry2.exe:*:Enabled:Far Cry 2"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Launcher.exe:*:Enabled:Far Cry 2 Updater"
"C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe"="C:\\Program Files\\Ubisoft\\Far Cry 2\\bin\\FC2Editor.exe:*:Enabled:Editor"
"C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe"="C:\\Program Files\\Activision\\Call of Duty 4 - Modern Warfare\\iw3mp.exe:*:Enabled:Call of Duty(R) 4 - Modern Warfare(TM)"
"C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe"="C:\\Program Files\\Common Files\\Ahead\\Nero Web\\SetupX.exe:*:Enabled:Nero ProductSetup"
"C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe"="C:\\Documents and Settings\\Uivatel\\Plocha\\Company of Heroes\\BugReport\\BugReport.exe:*:Enabled:BugReport"
"C:\\Program Files\\ICQ7.5\\ICQ.exe"="C:\\Program Files\\ICQ7.5\\ICQ.exe:*:Enabled:ICQ7.5"
"F:\\call\\Delta Force Extrema 2.exe"="F:\\call\\Delta Force Extrema 2.exe:*:Enabled:Delta Force Extrema 2"
"F:\\Valve\\hl.exe"="F:\\Valve\\hl.exe:*:Enabled:Half-Life Launcher"
"F:\\Valve\\hltv.exe"="F:\\Valve\\hltv.exe:*:Enabled:HLTV Launcher"
"F:\\Full Spectrum Warrior\\Launcher.locked"="F:\\Full Spectrum Warrior\\Launcher.locked:*:Enabled:Launcher"
"F:\\BitComet\\BitComet.exe"="F:\\BitComet\\BitComet.exe:*:Enabled:BitComet.exe"
"C:\\Program Files\\Steam\\Steam.exe"="C:\\Program Files\\Steam\\Steam.exe:*:Enabled:Steam"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MP.exe:*:Enabled:Wolfenstein(TM)"
"C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe"="C:\\Program Files\\Activision\\Wolfenstein\\MP\\Wolf2MPLite.exe:*:Enabled:Wolfenstein(TM)"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe"="C:\\Program Files\\NVIDIA Corporation\\NetService\\NvNetworkService.exe:*:Enabled:NVIDIA Network Service TCP Exception (HTTPS)"
"C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe"="C:\\Program Files\\Google\\Chrome\\Application\\chrome.exe:*:Enabled:Google Chrome"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
"1900:UDP"="1900:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22007"
"2869:TCP"="2869:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22008"
"139:TCP"="139:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22004"
"445:TCP"="445:TCP:LocalSubNet:Disabled:@xpsp2res.dll,-22005"
"137:UDP"="137:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22001"
"138:UDP"="138:UDP:LocalSubNet:Disabled:@xpsp2res.dll,-22002"
"22091:TCP"="22091:TCP:*:Enabled:BitComet 22091 TCP"
"22091:UDP"="22091:UDP:*:Enabled:BitComet 22091 UDP"
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.rar
- (7.55 KiB) Staženo 47 x
Re: zpomalený PC
Zdravim
Pred pripadnym pokracovanim a pomoci, vas musim pozadat o odstraneni NELEGALNIHO Esetu. Tento muj "pozadavek" vychazi z platnych pravidel fora http://forum.viry.cz/viewtopic.php?f=12&t=115512, ktere jste vy i ja povinnen dodrzovat
Takze pokud chcete pomoci, tak jej odinstalujte, nainstalujte free reseni (napr. Avast Free http://www.avast.com/get/gWR5mo92 ), napiste a budeme pokracovat
Pomáhat NELZE:
2) Pokud stroj uživatele obsahuje nelegální hostitelský čí ochranný software
(operační systém, antivir, firewall, atd.), je nutné navést uživatele k nápravě, např. skrze neplacený software,
a začít řešit, až v době kdy je PC "v pořádku". V případě že uživatel nechce na pravidla přistoupit,
je nutné jej vyzvat ať fórum opustí, a vrátí se až je splní.
Re: zpomalený PC
nod 32 jsem odinstaloval
Re: zpomalený PC
- Ulozte nejlepe na Plochu
- Spustte tradicne dvouklikem a postupujte dle pokynu utility
- Po dokonceni skenu se vytvori a otevre log, ten mi sem vlozte
Re: zpomalený PC
nainstaloval jsem free antivir, zde je log
Results of screen317's Security Check version 0.99.91
Windows XP Service Pack 3 x86
Internet Explorer 6 Out of date!
``````````````Antivirus/Firewall Check:``````````````
Avast Free Antivirus
`````````Anti-malware/Other Utilities Check:`````````
SUPERAntiSpyware
CCleaner
Adobe Flash Player 9 Flash Player out of Date!
Adobe Flash Player 15.0.0.239
Adobe Reader 6 Adobe Reader out of Date!
Mozilla Firefox (33.1)
Google Chrome (39.0.2171.65)
Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastUi.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
Results of screen317's Security Check version 0.99.91
Windows XP Service Pack 3 x86
Internet Explorer 6 Out of date!
``````````````Antivirus/Firewall Check:``````````````
Avast Free Antivirus
`````````Anti-malware/Other Utilities Check:`````````
SUPERAntiSpyware
CCleaner
Adobe Flash Player 9 Flash Player out of Date!
Adobe Flash Player 15.0.0.239
Adobe Reader 6 Adobe Reader out of Date!
Mozilla Firefox (33.1)
Google Chrome (39.0.2171.65)
Google Chrome (39.0.2171.71)
````````Process Check: objlist.exe by Laurent````````
AVAST Software Avast AvastSvc.exe
AVAST Software Avast avastUi.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C::
````````````````````End of Log``````````````````````
Re: zpomalený PC
Internet Explorer 6 Out of date!
Adobe Flash Player 9 Flash Player out of Date!
Adobe Reader 6 Adobe Reader out of Date!
- Ulozte nejlepe na plochu
- Ukoncete vsechny programy
- Po spusteni probehne stazeni databaze
- Kliknete na Scan a nasledne Clean
- Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
- Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
- Do okna vlozte skript nize
Kód: Vybrat vše
autoclean; resethosts; emptyclsid; IEdefaults; FFdefaults; CHRdefaults; emptyIEcache; emptyFFcache; emptyCHRcache; emptyalltemp; emptyflash; emptyjava; emptyrecycle.bin;- Nasledne kliknete na Run Script
- PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Re: zpomalený PC
zde je log adwcleaner, a log zoek
# AdwCleaner v4.103 - Report created 04/12/2014 at 21:09:46
# Updated 01/12/2014 by Xplode
# Database : 2014-12-03.1 [Live]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Uživatel - U-D7B7CA0AF35B4
# Running from : C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
[!] Folder Deleted : C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v33.1 (x86 cs)
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1417546384);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "cannafestPraha%203%2C%20%C5%99%C3%ADpsk%C3%A1%202237%20dn%C3%AD%20od%20atentatu%20k%20valceleak%20livelike%20leek5%20semensevastopolsituace%20na%20ukraji[...]
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343407260");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "33.1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "130485104813048512881304963879927");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1417631380);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
-\\ Google Chrome v39.0.2171.71
[C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
*************************
AdwCleaner[R0].txt - [10307 octets] - [04/12/2014 20:57:58]
AdwCleaner[S0].txt - [10567 octets] - [04/12/2014 21:09:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [10628 octets] ##########
Zoek.exe v5.0.0.0 Updated 03-December-2014
Tool run by U§ivatel on źt 04.12.2014 at 21:46:49,32.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\UIVATE~1\Plocha\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.12.2014 21:49:31 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\Black_Box deleted successfully
C:\Program Files\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\TopCD deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\BS.Player deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\F.E.A.R. 2 deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\boost_interprocess deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\NVIDIA deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\nView_Profiles deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Program Files\GUM18.tmp deleted
C:\Program Files\ComPlus Applications deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ICQ deleted
C:\WINDOWS\002560_.tmp deleted
C:\WINDOWS\SET21.tmp deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [03.12.2014 22:04]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[03.12.2014 22:04]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"ICQ Search"="http://www.google.com"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="https://www.seznam.cz/?clid=22668"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"ICQ Search"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
==== Reset Google Chrome ======================
Nothing found to reset
==== Empty IE Cache ======================
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UIVATE~2\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=15 folders=5 2901708 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\UIVATE~1\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on źt 04.12.2014 at 22:09:08,32 ======================
# AdwCleaner v4.103 - Report created 04/12/2014 at 21:09:46
# Updated 01/12/2014 by Xplode
# Database : 2014-12-03.1 [Live]
# Operating System : Microsoft Windows XP Service Pack 3 (32 bits)
# Username : Uživatel - U-D7B7CA0AF35B4
# Running from : C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
# Option : Clean
***** [ Services ] *****
***** [ Files / Folders ] *****
Folder Deleted : C:\Documents and Settings\All Users\Data aplikací\ICQ\ICQToolbar
Folder Deleted : C:\Program Files\DAEMON Tools Toolbar
Folder Deleted : C:\Program Files\ICQ6Toolbar
[!] Folder Deleted : C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.gif
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.src
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-1.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-10.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-11.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-12.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-13.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-14.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-15.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-16.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-17.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-18.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-19.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-2.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-20.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-21.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-22.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-23.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-24.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-25.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-3.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-26.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-27.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-28.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-29.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-30.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-4.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-5.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-6.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-7.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-8.xml
File Deleted : C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\icqplugin-9.xml
***** [ Scheduled Tasks ] *****
***** [ Shortcuts ] *****
***** [ Registry ] *****
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{855F3B16-6D32-4FE6-8A56-BBB695989046}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4B3803EA-5230-4DC3-A7FC-33638F3D3542}
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{32099AAC-C132-4136-9E9A-4E364A424E17}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{4B3803EA-5230-4DC3-A7FC-33638F3D3542}]
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{1CB20BF0-BBAE-40A7-93F4-6435FF3D0411}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AD22EBAF-0D18-4fc7-90CC-5EA0ABBE9EB8}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Conduit
Key Deleted : HKLM\SOFTWARE\ICQ\ICQToolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\daemon tools toolbar
***** [ Browsers ] *****
-\\ Internet Explorer v8.0.6001.18702
Setting Restored : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Mozilla Firefox v33.1 (x86 cs)
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.allowSendURL", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.defSearchChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.engineVerified", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.firstTbRun", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.geolastmodified", 1417546384);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.history", "cannafestPraha%203%2C%20%C5%99%C3%ADpsk%C3%A1%202237%20dn%C3%AD%20od%20atentatu%20k%20valceleak%20livelike%20leek5%20semensevastopolsituace%20na%20ukraji[...]
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.hpChange", true);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.icqgeo", 42);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installTime", "1343407260");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.installsource", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.newtab_state", "1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.numberOfSearches", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.previousFFVersion", "33.1");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.skip_default_search", "no");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.suggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.uniqueID", "130485104813048512881304963879927");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.usageStatstTimestamp", 1417631380);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.version", "1.5.3");
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherHideClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.voucherWasShown", 0);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableHomePageDsGuard", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[pzomn7nw.default\prefs.js] - Line Deleted : user_pref("icqtoolbar.xmlLanguage", "cs");
-\\ Google Chrome v39.0.2171.71
[C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\preferences] - Deleted [Extension] : bopakagnckmlgajfccecajhnimjiiedh
*************************
AdwCleaner[R0].txt - [10307 octets] - [04/12/2014 20:57:58]
AdwCleaner[S0].txt - [10567 octets] - [04/12/2014 21:09:46]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [10628 octets] ##########
Zoek.exe v5.0.0.0 Updated 03-December-2014
Tool run by U§ivatel on źt 04.12.2014 at 21:46:49,32.
Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86
Running in: Normal Mode Internet Access Detected
Launched: C:\Documents and Settings\UIVATE~1\Plocha\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
4.12.2014 21:49:31 Zoek.exe System Restore Point Created Succesfully.
==== Reset Hosts File ======================
# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host
127.0.0.1 localhost
==== Empty Folders Check ======================
C:\Program Files\AGEIA Technologies deleted successfully
C:\Program Files\Black_Box deleted successfully
C:\Program Files\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\FireFly Studios deleted successfully
C:\DOCUME~1\ALLUSE~1\NABDKA~1\Programy\TopCD deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\BS.Player deleted successfully
C:\DOCUME~1\UIVATE~1\NABDKA~1\Programy\F.E.A.R. 2 deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\boost_interprocess deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\NVIDIA deleted successfully
C:\DOCUME~1\ALLUSE~1\DATAAP~1\nView_Profiles deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Program Files\GUM18.tmp deleted
C:\Program Files\ComPlus Applications deleted
C:\DOCUME~1\ALLUSE~1\DATAAP~1\ICQ deleted
C:\WINDOWS\002560_.tmp deleted
C:\WINDOWS\SET21.tmp deleted
C:\WINDOWS\SET3.tmp deleted
C:\WINDOWS\SET4.tmp deleted
C:\WINDOWS\SET8.tmp deleted
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [03.12.2014 22:04]
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[03.12.2014 22:04]
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="https://www.seznam.cz/?clid=22668"
"Search Page"="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
"ICQ Search"="http://www.google.com"
"Search Bar"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="https://www.seznam.cz/?clid=22668"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Search Page"="http://go.microsoft.com/fwlink/?LinkId=54896"
"ICQ Search"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
"Start Page"="https://www.seznam.cz/?clid=22668"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Bar"="http://go.microsoft.com/fwlink/?LinkId=54896"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{15C4DF55-4B67-495A-A3D3-A497C4A49EE0}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{15C4DF55-4B67-495A-A3D3-A497C4A49EE0} Seznam Url="http://search.seznam.cz/?sourceid=quick ... earchTerms}"
==== Reset Google Chrome ======================
Nothing found to reset
==== Empty IE Cache ======================
C:\Documents and Settings\Default User\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temp\acrord32_sbx\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\Uživatel\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\UIVATE~2\Local Settings\Temporary Internet Files\Content.IE5 emptied successfully
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot
==== Empty FireFox Cache ======================
No FireFox Profiles found
==== Empty Chrome Cache ======================
No Chrome User Data found
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=15 folders=5 2901708 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\DOCUME~1\UIVATE~1\LOCALS~1\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\RECYCLER successfully emptied
==== Deleting Files / Folders ======================
"C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not deleted
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
"C:\WINDOWS\system32\config\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\index.dat" not found
==== EOF on źt 04.12.2014 at 22:09:08,32 ======================
Re: zpomalený PC
Poprosim o novy log z FRST
Re: zpomalený PC
zde je novy log z frst
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-12-2014
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 05-12-2014 17:47:28
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\FileHippo.com\FileHippo.AppManager.exe
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-12-03] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SelectedSearchEngine: Seznam
FF Homepage: https://www.seznam.cz/?clid=22668
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_233.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\seznam-avast.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-03]
FF Extension: No Name - wrc@avast.com [Not Found]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-03]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-03] (AVAST Software)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-12-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-12-03] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-12-03] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-12-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-12-03] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-12-03] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-12-03] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-12-03] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] () [File not signed]
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 aizjjjd1; C:\WINDOWS\system32\Drivers\aizjjjd1.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-05 17:47 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 20:49 - 2014-12-04 21:57 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-04 20:49 - 2014-12-04 20:49 - 00701616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-04 20:49 - 2014-12-04 20:49 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-12-04 20:31 - 2014-12-04 20:32 - 18132656 _____ (Adobe Systems Incorporated) C:\Documents and Settings\Uživatel\Plocha\flashplayer16_install_win_pi(1).exe
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\Uživatel\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\LocalService\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 ____D () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Accessories
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00000000 __HDC () C:\WINDOWS\ie8
2014-12-04 17:34 - 2014-12-04 17:35 - 16883056 _____ (Microsoft Corporation) C:\Documents and Settings\Uživatel\Plocha\IE8-WindowsXP-x86-ENU.exe
2014-12-04 17:33 - 2014-12-04 17:33 - 00001804 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-12-04 17:33 - 2014-12-04 17:33 - 00001741 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001694 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001688 _____ () C:\Documents and Settings\Uživatel\Plocha\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Program Files\FileHippo.com
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\IsolatedStorage
2014-12-03 22:10 - 2014-12-03 22:10 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Temp
2014-12-03 22:06 - 2014-12-03 22:06 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Dropbox
2014-12-03 22:04 - 2014-12-05 17:13 - 00000368 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-12-03 22:04 - 2014-12-03 22:04 - 00787800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00423784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00323712 _____ (Dropbox, Inc.) C:\Documents and Settings\All Users\Plocha\DropboxInstallerAvast.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00291352 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00206248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00070384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00057928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00055240 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-12-03 22:04 - 2014-12-03 22:04 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00001738 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\WINDOWS\jumpshot.com
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\AVAST Software
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
2014-12-03 20:01 - 2014-12-05 17:47 - 00000000 ____D () C:\FRST
2014-12-03 19:54 - 2014-12-05 17:43 - 01110016 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:47 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-05 17:47 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-05 17:36 - 2014-01-21 20:22 - 00004920 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-05 17:11 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-05 17:08 - 2008-03-12 23:59 - 02075400 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-05 17:07 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 17:07 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-05 17:07 - 2011-04-15 19:04 - 00013983 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-05 17:07 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-05 17:07 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-05 17:07 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-04 22:35 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-04 22:35 - 2008-03-13 00:02 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-04 22:06 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel
2014-12-04 22:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-04 22:03 - 2008-03-13 00:52 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-12-04 21:51 - 2008-03-13 00:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-12-04 21:51 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2014-12-04 19:53 - 2014-10-19 16:19 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2014-12-04 19:53 - 2008-04-02 15:07 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Adobe
2014-12-04 17:40 - 2011-04-22 15:28 - 00000810 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Oblíbené položky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty
2014-12-04 17:40 - 2008-03-13 00:02 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-12-04 17:39 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Help
2014-12-04 17:37 - 2014-04-21 09:00 - 00084343 _____ () C:\WINDOWS\setupapi.log
2014-12-04 17:37 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Media
2014-12-04 17:33 - 2008-03-13 00:52 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-12-03 22:10 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 22:06 - 2008-03-13 00:04 - 00000000 __RHD () C:\Documents and Settings\Uživatel\Data aplikací
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 03-12-2014
Ran by Uživatel (administrator) on U-D7B7CA0AF35B4 on 05-12-2014 17:47:28
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Platform: Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: Čeština
Internet Explorer Version 8
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(SUPERAntiSpyware.com) C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
(Motive Communications, Inc.) C:\Program Files\Common Files\Motive\McciCMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe
() C:\WINDOWS\system32\PnkBstrA.exe
(NVIDIA Corporation) C:\WINDOWS\system32\nvraidservice.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe
(Gainward Co.) C:\WINDOWS\TBPanel.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskBar.exe
(Apple Inc.) C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe
(Memeo) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe
(Nero AG) C:\Program Files\Nero\Nero 7\InCD\InCD.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\avastui.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMouseTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gKbdTask.exe
(TODO: <Company name>) C:\Genius\ioCentre\gAutoPan.exe
() C:\Genius\ioCentre\gAutoScroll.exe
(TODO: <Company name>) C:\Genius\ioCentre\gZoom.exe
(TODO: <Company name>) C:\Genius\ioCentre\gMGlass.exe
(TODO: <Company name>) C:\Genius\ioCentre\gIMMgm.exe
(TODO: <Company name>) C:\Genius\ioCentre\gDeskMgm.exe
(Microsoft Corporation) C:\Program Files\Messenger\msmsgs.exe
(Macrovision Corporation) C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
(TODO: <Company name>) C:\Genius\ioCentre\gTaskSwitch.exe
(ICQ, LLC.) C:\Program Files\ICQ7.5\ICQ.exe
(DT Soft Ltd) C:\Program Files\DAEMON Tools Lite\daemon.exe
(SUPERAntiSpyware) C:\Program Files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE
() C:\Program Files\FileHippo.com\FileHippo.AppManager.exe
() C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
(Realtek Semiconductor Corp.) C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe
(WDC) C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe
(Western Digital) C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe
(Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe
(Microsoft Corporation) C:\WINDOWS\system32\wbem\unsecapp.exe
() C:\Program Files\MSI\DualCoreCenter\DualCoreCenter.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NVRaidService] => C:\WINDOWS\system32\nvraidservice.exe [184864 2007-08-17] (NVIDIA Corporation)
HKLM\...\Run: [RTHDCPL] => C:\WINDOWS\RTHDCPL.EXE [16858624 2007-11-30] (Realtek Semiconductor Corp.)
HKLM\...\Run: [Alcmtr] => C:\WINDOWS\ALCMTR.EXE [69632 2005-05-03] (Realtek Semiconductor Corp.)
HKLM\...\Run: [JMB36X IDE Setup] => C:\WINDOWS\RaidTool\xInsIDE.exe [36864 2007-03-20] ()
HKLM\...\Run: [36X Raid Configurer] => C:\WINDOWS\system32\xRaidSetup.exe [1957888 2007-05-25] (JMicron Technology Corp.)
HKLM\...\Run: [Gainward] => C:\WINDOWS\TBPanel.exe [2189864 2008-01-09] (Gainward Co.)
HKLM\...\Run: [ioCentre] => C:\Genius\ioCentre\gTaskBar.exe [241664 2006-12-08] (TODO: <Company name>)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2234144 2014-02-05] (NVIDIA Corporation)
HKLM\...\Run: [NvCplDaemon] => RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
HKLM\...\Run: [NvMediaCenter] => RunDLL32.exe NvMCTray.dll,NvTaskbarInit -login
HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [2593056 2014-03-09] ()
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-12-03] (AVAST Software)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\DualCoreCenter.lnk
ShortcutTarget: DualCoreCenter.lnk -> C:\Program Files\MSI\DualCoreCenter\StartUpDualCoreCenter.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\InterVideo WinCinema Manager.lnk
ShortcutTarget: InterVideo WinCinema Manager.lnk -> C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe ()
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\REALTEK RTL8187 Wireless LAN Utility.lnk
ShortcutTarget: REALTEK RTL8187 Wireless LAN Utility.lnk -> C:\Program Files\Realtek\RTL8187 Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDDMStatus.lnk
ShortcutTarget: WDDMStatus.lnk -> C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMStatus.exe (WDC)
Startup: C:\Documents and Settings\All Users\Nabídka Start\Programy\Po spuštění\WDSmartWare.lnk
ShortcutTarget: WDSmartWare.lnk -> C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWare.exe (Western Digital)
Startup: C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Po spuštění\PowerReg Scheduler.exe ()
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll (AVAST Software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.seznam.cz/?clid=22668
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> DefaultScope {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> {15C4DF55-4B67-495A-A3D3-A497C4A49EE0} URL = http://search.seznam.cz/?sourceid=quick ... earchTerms}
Toolbar: HKU\S-1-5-21-789336058-1417001333-725345543-1004 -> &Adresa - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\system32\browseui.dll (Společnost Microsoft)
ShellExecuteHooks: SABShellExecuteHook Class - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - C:\Program Files\SUPERAntiSpyware\SASSEH.DLL [113024 2011-07-19] (SuperAdBlocker.com)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF ProfilePath: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default
FF DefaultSearchEngine: Seznam
FF DefaultSearchUrl: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF SearchEngineOrder.1: Seznam
FF SelectedSearchEngine: Seznam
FF Homepage: https://www.seznam.cz/?clid=22668
FF Keyword.URL: hxxp://search.seznam.cz/?sourceid=quicksearch_22668&q={searchTerms}&
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_16_0_0_233.dll ()
FF Plugin: @real.com/nppl3260;version=6.0.11.2571 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nppl3260.dll (RealNetworks, Inc.)
FF Plugin: @real.com/nprpjplug;version=6.0.12.1739 -> C:\Program Files\MpcStar\Codecs\Real\browser\plugins\nprpjplug.dll (RealNetworks, Inc.)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npBitCometAgent.dll (BitComet)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Documents and Settings\Uživatel\Data aplikací\Mozilla\Firefox\Profiles\pzomn7nw.default\searchplugins\seznam-avast.xml
FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2014-12-03]
FF Extension: No Name - wrc@avast.com [Not Found]
Chrome:
=======
CHR Profile: C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default
CHR Extension: (Dokumenty Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-04-18]
CHR Extension: (Disk Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-04-18]
CHR Extension: (YouTube) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-04-18]
CHR Extension: (Vyhledávání Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-04-18]
CHR Extension: (Peněženka Google) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-04-18]
CHR Extension: (Gmail) - C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-04-18]
CHR HKLM\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-12-03]
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 !SASCORE; C:\Program Files\SUPERAntiSpyware\SASCORE.EXE [142648 2014-08-13] (SUPERAntiSpyware.com)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-12-03] (AVAST Software)
R2 InCDsrv; C:\Program Files\Nero\Nero 7\InCD\InCDsrv.exe [1550896 2007-05-15] (Nero AG)
R2 McciCMService; C:\Program Files\Common Files\Motive\McciCMService.exe [303104 2007-10-15] (Motive Communications, Inc.) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1593632 2014-02-05] (NVIDIA Corporation)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [66872 2009-07-27] ()
R2 WDDMService; C:\Program Files\Western Digital\WD SmartWare\WD Drive Manager\WDDMService.exe [110592 2010-01-21] (WDC) [File not signed]
R2 WDSmartWareBackgroundService; C:\Program Files\Western Digital\WD SmartWare\Front Parlor\WDSmartWareBackgroundService.exe [20480 2009-06-16] (Memeo) [File not signed]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AegisP; C:\WINDOWS\System32\DRIVERS\AegisP.sys [21035 2011-04-15] (Meetinghouse Data Communications) [File not signed]
R3 Afc; C:\WINDOWS\System32\drivers\Afc.sys [11776 2005-02-23] (Arcsoft, Inc.) [File not signed]
R2 aswHwid; C:\WINDOWS\system32\drivers\aswHwid.sys [24184 2014-12-03] ()
R2 aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [70384 2014-12-03] (AVAST Software)
R1 aswRdr; C:\WINDOWS\system32\drivers\aswRdr.sys [55240 2014-12-03] (AVAST Software)
R0 aswRvrt; C:\WINDOWS\system32\Drivers\aswRvrt.sys [49944 2014-12-03] ()
R1 aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [787800 2014-12-03] (AVAST Software)
R1 aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [423784 2014-12-03] (AVAST Software)
R1 aswTdi; C:\WINDOWS\system32\drivers\aswTdi.sys [57928 2014-12-03] (AVAST Software)
R0 aswVmm; C:\WINDOWS\system32\Drivers\aswVmm.sys [206248 2014-12-03] ()
S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation)
S3 CoachAud; C:\WINDOWS\System32\DRIVERS\CoachAud.sys [10368 2004-11-24] (FotoNation Inc.)
S3 CoachUsb; C:\WINDOWS\System32\DRIVERS\CoachUsb.sys [50976 2004-11-24] (FotoNation Inc.)
S3 CoachVc; C:\WINDOWS\System32\DRIVERS\CoachVc.sys [44256 2004-11-24] (FotoNation Inc.)
R3 DualCoreCenter; C:\Program Files\MSI\DualCoreCenter\NTGLM7X.sys [28160 2007-12-18] (MICRO-STAR INT'L CO., LTD.) [File not signed]
R2 EAPPkt; C:\WINDOWS\System32\DRIVERS\EAPPkt.sys [38144 2007-10-09] (Realtek) [File not signed]
S3 ENTECH; C:\WINDOWS\system32\DRIVERS\ENTECH.sys [20400 1999-10-21] (EnTech Taiwan) [File not signed]
R2 Ethpdrv; C:\WINDOWS\System32\DRIVERS\ethpdrv.sys [9728 2005-09-08] (Gemfor s.r.o.) [File not signed]
S3 gHidPnp; C:\WINDOWS\System32\Drivers\gHidPnp.Sys [14848 2006-07-14] ()
S3 gMouPS2; C:\WINDOWS\System32\DRIVERS\gMouPS2.sys [17408 2006-07-12] ( Mouse Upfilter Driver )
S3 gMouUsb; C:\WINDOWS\System32\DRIVERS\gMouUsb.sys [9984 2006-07-14] () [File not signed]
R4 InCDfs; C:\WINDOWS\System32\drivers\InCDFs.sys [118576 2007-05-15] (Nero AG)
R1 InCDPass; C:\WINDOWS\System32\drivers\InCDPass.sys [37040 2007-05-15] (Nero AG)
U1 InCDrec; C:\WINDOWS\system32\Drivers\InCDrec.sys [16304 2007-05-15] (Nero AG)
R1 incdrm; C:\WINDOWS\System32\drivers\InCDRm.sys [38576 2007-05-15] (Nero AG)
R3 IntcAzAudAddService; C:\WINDOWS\System32\drivers\RtkHDAud.sys [4632576 2007-12-05] (Realtek Semiconductor Corp.) [File not signed]
S3 ipw_bus; C:\WINDOWS\System32\DRIVERS\ipw_bus.sys [58320 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdfl; C:\WINDOWS\System32\DRIVERS\ipw_mdfl.sys [8272 2005-09-27] (MCCI) [File not signed]
S3 ipw_mdm; C:\WINDOWS\System32\DRIVERS\ipw_mdm.sys [95440 2005-09-27] (MCCI) [File not signed]
R0 JRAID; C:\WINDOWS\System32\DRIVERS\jraid.sys [48768 2007-07-05] (JMicron Technology Corp.) [File not signed]
S3 MREMP50; C:\Program Files\Common Files\Motive\MREMP50.sys [21248 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 MRESP50; C:\Program Files\Common Files\Motive\MRESP50.sys [20096 2008-03-29] (Printing Communications Assoc., Inc. (PCAUSA)) [File not signed]
S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation)
R3 NVENETFD; C:\WINDOWS\System32\DRIVERS\NVENETFD.sys [54144 2007-10-12] (NVIDIA Corporation) [File not signed]
R0 nvgts; C:\WINDOWS\System32\drivers\nvgts.sys [102400 2007-08-09] (NVIDIA Corporation) [File not signed]
R3 nvnetbus; C:\WINDOWS\System32\DRIVERS\nvnetbus.sys [22016 2007-10-12] (NVIDIA Corporation) [File not signed]
R3 NVR0Dev; C:\WINDOWS\nvoclock.sys [6912 2006-10-13] (NVidia Corp.) [File not signed]
R0 nvrd32; C:\WINDOWS\System32\drivers\nvrd32.sys [124928 2007-08-09] (NVIDIA Corporation) [File not signed]
R1 PQNTDrv; C:\WINDOWS\system32\Drivers\PQNTDrv.sys [3252 2001-08-10] () [File not signed]
R3 RTLWUSB; C:\WINDOWS\System32\DRIVERS\RTL8187.sys [332928 2008-06-27] (Realtek Semiconductor Corporation )
R3 RushTopDevice2; C:\Program Files\MSI\DualCoreCenter\RushTop.sys [52736 2007-12-24] (Your Corporation) [File not signed]
R1 SASDIFSV; C:\Program Files\SUPERAntiSpyware\SASDIFSV.SYS [12880 2011-07-22] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R1 SASKUTIL; C:\Program Files\SUPERAntiSpyware\SASKUTIL.SYS [67664 2011-07-12] (SUPERAdBlocker.com and SUPERAntiSpyware.com)
R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [473656 2012-03-15] (Duplex Secure Ltd.)
R2 TBPanel; C:\WINDOWS\system32\Drivers\TBPanel.sys [12256 2007-03-16] (Windows (R) 2000 DDK provider)
U3 aizjjjd1; C:\WINDOWS\system32\Drivers\aizjjjd1.sys [0 ] (JMicron Technology Corp.) [File not signed]
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
NETSVC: SearchIndexer -> No Registry Path.
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-05 17:47 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel\Local Settings\Temp
2014-12-04 22:06 - 2014-12-04 22:06 - 00000000 ____D () C:\Documents and Settings\U×ivatel
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 20:49 - 2014-12-04 21:57 - 00000914 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2014-12-04 20:49 - 2014-12-04 20:49 - 00701616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2014-12-04 20:49 - 2014-12-04 20:49 - 00071344 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2014-12-04 20:31 - 2014-12-04 20:32 - 18132656 _____ (Adobe Systems Incorporated) C:\Documents and Settings\Uživatel\Plocha\flashplayer16_install_win_pi(1).exe
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\Uživatel\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 __SHD () C:\Documents and Settings\LocalService\IETldCache
2014-12-04 17:40 - 2014-12-04 17:40 - 00000000 ____D () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Accessories
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00000000 __HDC () C:\WINDOWS\ie8
2014-12-04 17:34 - 2014-12-04 17:35 - 16883056 _____ (Microsoft Corporation) C:\Documents and Settings\Uživatel\Plocha\IE8-WindowsXP-x86-ENU.exe
2014-12-04 17:33 - 2014-12-04 17:33 - 00001804 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Adobe Reader XI.lnk
2014-12-04 17:33 - 2014-12-04 17:33 - 00001741 _____ () C:\Documents and Settings\All Users\Plocha\Adobe Reader XI.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001694 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:22 - 00001688 _____ () C:\Documents and Settings\Uživatel\Plocha\FileHippo App Manager.lnk
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Program Files\FileHippo.com
2014-12-04 17:20 - 2014-12-04 17:20 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\IsolatedStorage
2014-12-03 22:10 - 2014-12-03 22:10 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Temp
2014-12-03 22:06 - 2014-12-03 22:06 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Dropbox
2014-12-03 22:04 - 2014-12-05 17:13 - 00000368 ____H () C:\WINDOWS\Tasks\avast! Emergency Update.job
2014-12-03 22:04 - 2014-12-03 22:04 - 00787800 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00423784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00323712 _____ (Dropbox, Inc.) C:\Documents and Settings\All Users\Plocha\DropboxInstallerAvast.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00291352 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-12-03 22:04 - 2014-12-03 22:04 - 00206248 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00070384 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00057928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswTdi.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00055240 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00049944 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-12-03 22:04 - 2014-12-03 22:04 - 00024184 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-12-03 22:04 - 2014-12-03 22:04 - 00001738 _____ () C:\Documents and Settings\All Users\Plocha\Avast Free Antivirus.lnk
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\WINDOWS\jumpshot.com
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\AVAST Software
2014-12-03 22:04 - 2014-12-03 22:04 - 00000000 ____D () C:\Documents and Settings\All Users\Nabídka Start\Programy\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Program Files\AVAST Software
2014-12-03 22:00 - 2014-12-03 22:00 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\AVAST Software
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
2014-12-03 20:01 - 2014-12-05 17:47 - 00000000 ____D () C:\FRST
2014-12-03 19:54 - 2014-12-05 17:43 - 01110016 _____ (Farbar) C:\Documents and Settings\Uživatel\Plocha\FRST.exe
2014-11-10 18:45 - 2014-11-10 18:45 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-05 17:47 - 2008-03-13 00:46 - 00000558 _____ () C:\WINDOWS\DFC.INI
2014-12-05 17:47 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha
2014-12-05 17:36 - 2014-01-21 20:22 - 00004920 _____ () C:\WINDOWS\system32\nvAppTimestamps
2014-12-05 17:11 - 2014-04-18 20:12 - 00000000 ____D () C:\Program Files\SUPERAntiSpyware
2014-12-05 17:08 - 2008-03-12 23:59 - 02075400 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-05 17:07 - 2012-10-21 16:50 - 00000936 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-12-05 17:07 - 2011-05-09 18:48 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\ICQ
2014-12-05 17:07 - 2011-04-15 19:04 - 00013983 _____ () C:\WINDOWS\RTacDbg.txt
2014-12-05 17:07 - 2008-03-13 00:53 - 00000159 _____ () C:\WINDOWS\wiadebug.log
2014-12-05 17:07 - 2008-03-13 00:53 - 00000049 _____ () C:\WINDOWS\wiaservc.log
2014-12-05 17:07 - 2008-03-13 00:02 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-12-04 22:35 - 2008-03-13 00:04 - 00000178 ___SH () C:\Documents and Settings\Uživatel\ntuser.ini
2014-12-04 22:35 - 2008-03-13 00:02 - 00032416 _____ () C:\WINDOWS\SchedLgU.Txt
2014-12-04 22:06 - 2008-03-13 00:04 - 00000000 ____D () C:\Documents and Settings\Uživatel
2014-12-04 22:03 - 2012-10-21 16:50 - 00000940 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-12-04 22:03 - 2008-03-13 00:52 - 00000000 __RHD () C:\Documents and Settings\All Users\Data aplikací
2014-12-04 21:51 - 2008-03-13 00:52 - 00000000 ___RD () C:\Documents and Settings\All Users\Nabídka Start\Programy
2014-12-04 21:51 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Nabídka Start\Programy
2014-12-04 19:53 - 2014-10-19 16:19 - 00000000 ____D () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\Adobe
2014-12-04 19:53 - 2008-04-02 15:07 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Adobe
2014-12-04 17:40 - 2011-04-22 15:28 - 00000810 _____ () C:\Documents and Settings\Uživatel\Nabídka Start\Programy\Internet Explorer.lnk
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Oblíbené položky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Obrázky
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty\Hudba
2014-12-04 17:40 - 2008-03-13 00:04 - 00000000 ___RD () C:\Documents and Settings\Uživatel\Dokumenty
2014-12-04 17:40 - 2008-03-13 00:02 - 00000000 __SHD () C:\Documents and Settings\LocalService
2014-12-04 17:39 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Help
2014-12-04 17:37 - 2014-04-21 09:00 - 00084343 _____ () C:\WINDOWS\setupapi.log
2014-12-04 17:37 - 2008-03-13 00:43 - 00000000 ____D () C:\WINDOWS\Media
2014-12-04 17:33 - 2008-03-13 00:52 - 00000000 ____D () C:\Documents and Settings\All Users\Plocha
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Common Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Program Files\Adobe
2014-12-04 17:32 - 2008-03-15 17:02 - 00000000 ____D () C:\Documents and Settings\All Users\Data aplikací\Adobe
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Plocha\Mozilla Firefox.lnk
2014-12-03 22:11 - 2011-04-30 12:26 - 00000719 _____ () C:\Documents and Settings\All Users\Nabídka Start\Programy\Mozilla Firefox.lnk
2014-12-03 22:10 - 2008-03-13 00:04 - 00000000 ___HD () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací
2014-12-03 22:06 - 2008-03-13 00:04 - 00000000 __RHD () C:\Documents and Settings\Uživatel\Data aplikací
2014-12-03 19:52 - 2008-03-14 00:24 - 00000069 _____ () C:\WINDOWS\NeroDigital.ini
2014-12-03 19:52 - 2008-03-13 23:35 - 00233472 _____ () C:\Documents and Settings\Uživatel\Local Settings\Data aplikací\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-12-03 18:18 - 2006-03-02 13:00 - 00013646 _____ () C:\WINDOWS\system32\wpa.dbl
2014-11-26 22:04 - 2014-04-18 20:13 - 00001820 _____ () C:\Documents and Settings\All Users\Plocha\Google Chrome.lnk
2014-11-11 17:06 - 2012-05-05 11:59 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-11-09 15:53 - 2012-10-21 14:54 - 00000000 ____D () C:\Documents and Settings\Uživatel\Data aplikací\Stellarium
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End Of Log ============================
Re: zpomalený PC
- Spustte poznamkovy blok (Start-spustit-notepad)
- Zkopirujte skript nize
Kód: Vybrat vše
Start CloseProcesses: HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.) HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG) HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG) HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG) HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware) HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] () HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe FF NetworkProxy: "autoconfig_url", "10.0.0.137" FF NetworkProxy: "type", 2 FF Extension: No Name - wrc@avast.com [Not Found] S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X] S4 IntelIde; No ImagePath S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X] S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X] S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X] S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X] S3 NTACCESS; \??\E:\NTACCESS.sys [X] U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X] U1 WS2IFSL; No ImagePath NETSVC: SearchIndexer C:\WINDOWS\nod32fixtemdono.reg 2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion 2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log 2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup 2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe 2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner 2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe 2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt 2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log 2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log 2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log 2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log 2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe 2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe 2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar 2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt 2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Hosts: EmptyTemp: Reboot: End- Ulozte vytvoreny TXT jako fixlist.txt
- Presunte vytvoreny fixlist vedle FRST
- Kliknete na Fix
- Probehne oprava a vytvori log Fixlog.txt
Re: zpomalený PC
zde je fixlog
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-12-2014
Ran by Uživatel at 2014-12-05 18:38:45 Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Extension: No Name - wrc@avast.com [Not Found]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
NETSVC: SearchIndexer
C:\WINDOWS\nod32fixtemdono.reg
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SecurDisc => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InCD => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com => value deleted successfully.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-789336058-1417001333-725345543-1004" => Key not found.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key deleted successfully.
"HKCR\CLSID\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key not found.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
NOD32FiXTemDono => Service deleted successfully.
GMSIPCI => Service deleted successfully.
IntelIde => Service deleted successfully.
MREMP50a64 => Service deleted successfully.
MREMPR5 => Service deleted successfully.
MRENDIS5 => Service deleted successfully.
MRESP50a64 => Service deleted successfully.
NTACCESS => Service deleted successfully.
ScsiPort => Service deleted successfully.
SetupNTGLM7X => Service deleted successfully.
WS2IFSL => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs SearchIndexer => Value deleted successfully.
C:\WINDOWS\nod32fixtemdono.reg => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe => Moved successfully.
C:\WINDOWS\spupdsvc.log => Moved successfully.
Could not move "C:\WINDOWS\system32\config\Internet.evt" => Scheduled to move on reboot.
C:\WINDOWS\updspapi.log => Moved successfully.
C:\WINDOWS\FaxSetup.log => Moved successfully.
C:\WINDOWS\ocgen.log => Moved successfully.
C:\WINDOWS\tsoc.log => Moved successfully.
C:\WINDOWS\comsetup.log => Moved successfully.
C:\WINDOWS\imsins.log => Moved successfully.
C:\WINDOWS\ntdtcsetup.log => Moved successfully.
C:\WINDOWS\iis6.log => Moved successfully.
C:\WINDOWS\ocmsn.log => Moved successfully.
C:\WINDOWS\msgsocm.log => Moved successfully.
C:\WINDOWS\ie8.log => Moved successfully.
C:\WINDOWS\ie8_main.log => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.rar => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST.txt => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.txt => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 534.6 MB temporary data.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-05 18:51:47)<=
"C:\WINDOWS\system32\config\Internet.evt" => File could not move.
==== End of Fixlog ====
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 03-12-2014
Ran by Uživatel at 2014-12-05 18:38:45 Run:1
Running from C:\Documents and Settings\Uživatel\Plocha
Loaded Profile: Uživatel (Available profiles: Uživatel)
Boot Mode: Normal
==============================================
Content of fixlist:
*****************
Start
CloseProcesses:
HKLM\...\Run: [QuickTime Task] => C:\Program Files\MpcStar\Codecs\QuickTime\QTSystem\qttask.exe [413696 2010-02-08] (Apple Inc.)
HKLM\...\Run: [SecurDisc] => C:\Program Files\Nero\Nero 7\InCD\NBHGui.exe [1628208 2007-05-15] (Nero AG)
HKLM\...\Run: [NeroFilterCheck] => C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe [153136 2007-03-01] (Nero AG)
HKLM\...\Run: [InCD] => C:\Program Files\Nero\Nero 7\InCD\InCD.exe [1057328 2007-05-15] (Nero AG)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-09-12] (Adobe Systems Incorporated)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [Power2GoExpress] => C:\WINDOWS\system32\ctfmon.exe [15360 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [MSMSGS] => C:\Program Files\Messenger\msmsgs.exe [1695232 2008-04-14] (Microsoft Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ISUSPM] => C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [ICQ] => C:\Program Files\ICQ7.5\ICQ.exe [124216 2011-06-29] (ICQ, LLC.)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [DAEMON Tools Lite] => C:\Program Files\DAEMON Tools Lite\daemon.exe [691656 2009-04-23] (DT Soft Ltd)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [SUPERAntiSpyware] => C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe [6692632 2014-10-21] (SUPERAntiSpyware)
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\Run: [FileHippo.com] => C:\Program Files\FileHippo.com\FileHippo.AppManager.exe [1435136 2014-10-03] ()
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: G - "G:\WD SmartWare.exe" autoplay=true
HKU\S-1-5-21-789336058-1417001333-725345543-1004\...\MountPoints2: {5030ecc0-7a3b-11e4-b759-001aef095abd} - J:\urDrive.exe
FF NetworkProxy: "autoconfig_url", "10.0.0.137"
FF NetworkProxy: "type", 2
FF Extension: No Name - wrc@avast.com [Not Found]
S2 NOD32FiXTemDono; C:\WINDOWS\system32\regedt32.exe /s C:\WINDOWS\nod32fixtemdono.reg
S3 GMSIPCI; \??\E:\INSTALL\GMSIPCI.SYS [X]
S4 IntelIde; No ImagePath
S3 MREMP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MREMP50a64.SYS [X]
S3 MREMPR5; \??\C:\PROGRA~1\COMMON~1\Motive\MREMPR5.SYS [X]
S3 MRENDIS5; \??\C:\PROGRA~1\COMMON~1\Motive\MRENDIS5.SYS [X]
S3 MRESP50a64; \??\C:\PROGRA~1\COMMON~1\Motive\MRESP50a64.SYS [X]
S3 NTACCESS; \??\E:\NTACCESS.sys [X]
U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation)
S3 SetupNTGLM7X; \??\E:\NTGLM7X.sys [X]
U1 WS2IFSL; No ImagePath
NETSVC: SearchIndexer
C:\WINDOWS\nod32fixtemdono.reg
2014-12-05 17:43 - 2014-12-05 17:43 - 00000000 ____D () C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion
2014-12-04 22:06 - 2014-12-04 21:46 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-12-04 21:49 - 2014-12-04 22:09 - 00006531 _____ () C:\zoek-results.log
2014-12-04 21:46 - 2014-12-04 22:03 - 00000000 ____D () C:\zoek_backup
2014-12-04 21:44 - 2014-12-04 21:44 - 01295360 _____ () C:\Documents and Settings\Uživatel\Plocha\zoek.exe
2014-12-04 20:56 - 2014-12-04 21:09 - 00000000 ____D () C:\AdwCleaner
2014-12-04 20:54 - 2014-12-04 20:54 - 02154496 _____ () C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe
2014-12-04 17:37 - 2014-12-04 17:40 - 00007481 _____ () C:\WINDOWS\spupdsvc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00065536 _____ () C:\WINDOWS\system32\config\Internet.evt
2014-12-04 17:37 - 2014-12-04 17:37 - 00012580 _____ () C:\WINDOWS\updspapi.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00006182 _____ () C:\WINDOWS\FaxSetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002956 _____ () C:\WINDOWS\ocgen.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002359 _____ () C:\WINDOWS\tsoc.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00002057 _____ () C:\WINDOWS\comsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001374 _____ () C:\WINDOWS\imsins.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00001247 _____ () C:\WINDOWS\ntdtcsetup.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000966 _____ () C:\WINDOWS\iis6.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000386 _____ () C:\WINDOWS\ocmsn.log
2014-12-04 17:37 - 2014-12-04 17:37 - 00000309 _____ () C:\WINDOWS\msgsocm.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00038521 _____ () C:\WINDOWS\ie8.log
2014-12-04 17:36 - 2014-12-04 17:37 - 00031342 _____ () C:\WINDOWS\ie8_main.log
2014-12-03 22:00 - 2014-12-03 22:00 - 05006864 _____ (AVAST Software) C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe
2014-12-03 21:52 - 2014-12-03 21:52 - 00852487 _____ () C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe
2014-12-03 20:53 - 2014-12-03 20:53 - 00007732 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.rar
2014-12-03 20:02 - 2014-12-05 17:47 - 00020353 _____ () C:\Documents and Settings\Uživatel\Plocha\FRST.txt
2014-12-03 20:02 - 2014-12-03 20:03 - 00029463 _____ () C:\Documents and Settings\Uživatel\Plocha\Addition.txt
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
Reboot:
End
*****************
Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\QuickTime Task => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SecurDisc => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NeroFilterCheck => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\InCD => value deleted successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Power2GoExpress => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\MSMSGS => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ISUSPM => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\ICQ => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\SUPERAntiSpyware => value deleted successfully.
HKU\S-1-5-21-789336058-1417001333-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run\\FileHippo.com => value deleted successfully.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\S-1-5-21-789336058-1417001333-725345543-1004" => Key not found.
"HKU\S-1-5-21-789336058-1417001333-725345543-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key deleted successfully.
"HKCR\CLSID\{5030ecc0-7a3b-11e4-b759-001aef095abd}" => Key not found.
Firefox Proxy settings were reset.
Firefox Proxy settings were reset.
FF Extension: No Name - wrc@avast.com [Not Found] => not found.
NOD32FiXTemDono => Service deleted successfully.
GMSIPCI => Service deleted successfully.
IntelIde => Service deleted successfully.
MREMP50a64 => Service deleted successfully.
MREMPR5 => Service deleted successfully.
MRENDIS5 => Service deleted successfully.
MRESP50a64 => Service deleted successfully.
NTACCESS => Service deleted successfully.
ScsiPort => Service deleted successfully.
SetupNTGLM7X => Service deleted successfully.
WS2IFSL => Service deleted successfully.
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SvcHost\\netsvcs SearchIndexer => Value deleted successfully.
C:\WINDOWS\nod32fixtemdono.reg => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST-OlderVersion => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\zoek.exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\adwcleaner_4.103.exe => Moved successfully.
C:\WINDOWS\spupdsvc.log => Moved successfully.
Could not move "C:\WINDOWS\system32\config\Internet.evt" => Scheduled to move on reboot.
C:\WINDOWS\updspapi.log => Moved successfully.
C:\WINDOWS\FaxSetup.log => Moved successfully.
C:\WINDOWS\ocgen.log => Moved successfully.
C:\WINDOWS\tsoc.log => Moved successfully.
C:\WINDOWS\comsetup.log => Moved successfully.
C:\WINDOWS\imsins.log => Moved successfully.
C:\WINDOWS\ntdtcsetup.log => Moved successfully.
C:\WINDOWS\iis6.log => Moved successfully.
C:\WINDOWS\ocmsn.log => Moved successfully.
C:\WINDOWS\msgsocm.log => Moved successfully.
C:\WINDOWS\ie8.log => Moved successfully.
C:\WINDOWS\ie8_main.log => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\avast_free_antivirus_setup_online.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\SecurityCheck.exe => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.rar => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\FRST.txt => Moved successfully.
C:\Documents and Settings\Uživatel\Plocha\Addition.txt => Moved successfully.
C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 534.6 MB temporary data.
=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-12-05 18:51:47)<=
"C:\WINDOWS\system32\config\Internet.evt" => File could not move.
==== End of Fixlog ====
Re: zpomalený PC
Fajn, jak se chova PC???
Re: zpomalený PC
rychlost se zlepšila , ale při projetí antispyware se našel vir, zde je log
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 12/05/2014 at 08:28 PM
Application Version : 6.0.1158
Database Version : 11643
Scan type : Complete Scan
Total Scan Time : 00:15:12
Operating System Information
Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator
Memory items scanned : 468
Memory threats detected : 0
Registry items scanned : 34320
Registry threats detected : 0
File items scanned : 17212
File threats detected : 19
Adware.Tracking Cookie
C:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txtC:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txt [ /adtech ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
bs.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
server.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
c1.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
Trojan.Agent/Gen-KillFiles
C:\SYSTEM VOLUME INFORMATION\_RESTORE{FE7473B0-8C59-488B-8806-B9E88E51EC29}\RP315\A0038543.EXE
============
End of Log
============
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 12/05/2014 at 08:28 PM
Application Version : 6.0.1158
Database Version : 11643
Scan type : Complete Scan
Total Scan Time : 00:15:12
Operating System Information
Windows XP Home Edition 32-bit, Service Pack 3 (Build 5.01.2600)
Administrator
Memory items scanned : 468
Memory threats detected : 0
Registry items scanned : 34320
Registry threats detected : 0
File items scanned : 17212
File threats detected : 19
Adware.Tracking Cookie
C:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txtC:\Documents and Settings\Uživatel\Cookies\uživatel@adtech[1].txt [ /adtech ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
bs.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.serving-sys.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.doubleclick.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
server.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adformdsp.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.smartadserver.com [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adtech.de [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
track.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
c1.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
.adform.net [ C:\DOCUMENTS AND SETTINGS\UžIVATEL\DATA APLIKACí\MOZILLA\FIREFOX\PROFILES\PZOMN7NW.DEFAULT\COOKIES.SQLITE ]
Trojan.Agent/Gen-KillFiles
C:\SYSTEM VOLUME INFORMATION\_RESTORE{FE7473B0-8C59-488B-8806-B9E88E51EC29}\RP315\A0038543.EXE
============
End of Log
============



Přispějete na provoz fóra?